StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

elastic/cloudbeat/.github/actions/k8s-ci

elastic/cloudbeat/.github/actions/k8s-ci

Analyzing Cloud Security Posture

4/10
Maintained action available
yonasbsd/rocksdb/.github/actions/post-steps

yonasbsd/rocksdb/.github/actions/post-steps

A library that provides an embeddable, persistent key-value store for fast storage.

5/10
Maintained action available
equinor/fusion-workspace/.github/actions/pnpm-setup

equinor/fusion-workspace/.github/actions/pnpm-setup

5/10
razorpay/blade/.github/actions/install-dependencies

razorpay/blade/.github/actions/install-dependencies

Design System that powers Razorpay

5/10
Maintained action available
base/account-sdk/.github/actions/setup

base/account-sdk/.github/actions/setup

4/10
Maintained action available
grafana/community-contributions/.github/actions/external-pr-validation/assess-quality

grafana/community-contributions/.github/actions/external-pr-validation/assess-quality

External contributor PR workflow testing sandbox

2/10
nvidia/blossom-action

nvidia/blossom-action

Github action used for internal ci-cd pipeline

2/10
step-security/cypress-io-github-action

step-security/cypress-io-github-action

GitHub Action for running Cypress end-to-end & component tests. Secure drop-in replacement for cypress-io/github-action.

8/10
Maintained by StepSecurity
atlassian/gajira-cli

atlassian/gajira-cli

2/10
openzeppelin/moonbeam/.github/workflow-templates/build-prod-binary

openzeppelin/moonbeam/.github/workflow-templates/build-prod-binary

An Ethereum-compatible smart contract parachain on Polkadot

2/10
kong/slsa-github-generator/.github/actions/secure-project-checkout

kong/slsa-github-generator/.github/actions/secure-project-checkout

Language-agnostic SLSA provenance generation for Github Actions

3/10
hashicorp/setup-packer

hashicorp/setup-packer

Run HashiCorp Packer as part of your GitHub Actions Workflow

9/10
step-security/msvc-dev-cmd/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/msvc-dev-cmd/__builder_checkout_dir__/.github/actions/secure-download-artifact

GitHub Action to setup Developer Command Prompt for Microsoft Visual C++. Secure drop-in replacement for ilammy/msvc-dev-cmd.

10/10
bjw-s-labs/action-changed-files

bjw-s-labs/action-changed-files

GitHub Action to return changed files. Mirror of https://git.bjw-s.dev/bjw-s/action-changed-files

5/10
Maintained action available
milhy545/coder/.github/actions/setup-go-paths

milhy545/coder/.github/actions/setup-go-paths

Secure environments for developers and their agents

2/10
docker/login-action

docker/login-action

GitHub Action to login against a Docker registry

8/10
slsa-framework/slsa-github-generator/actions/nodejs/publish

slsa-framework/slsa-github-generator/actions/nodejs/publish

Language-agnostic SLSA provenance generation for Github Actions

5/10
ksivamuthu/actions-setup-gh-cli

ksivamuthu/actions-setup-gh-cli

Actions to setup gh cli

3/10
sonarsource/sonarlint-vscode/.actions/get-build-number

sonarsource/sonarlint-vscode/.actions/get-build-number

SonarQube extension for Visual Studio Code providing code quality and security feedback directly in the editor

6/10
balena-io/deploy-to-balena-action

balena-io/deploy-to-balena-action

Official Github action to deploy releases to balenaCloud environments

5/10
Maintained action available